๐บ๐ธ
TPI-Abuse
2026-09-01 13:50:54
(18 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:50:47.612298 2026] [security2:error] [pid 17325:tid 17325] [client 34.106.210.224:46332] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.ajvaage.com"] [uri "/.env.production"] [unique_id "apbYNxAjZL49c-W1AugZwAAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 13:12:47
(19 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 09:12:42.126065 2026] [security2:error] [pid 23546:tid 23546] [client 34.106.210.224:51726] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "knowledgepreservationalliance.theknowledgemaster.com"] [uri "/.env.dev"] [unique_id "apbPSiv-qB4KFFM2mWX0NwAAACo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฒ๐พ
Rizzy
2026-09-01 12:34:43
(19 hours ago)
Multiple WAF Violations
Brute-Force
Web App Attack
๐บ๐ธ
factor1
2026-09-01 12:07:37
(20 hours ago)
CrowdSec at apollo Reports Abuse
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 11:58:23
(20 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 07:58:19.751217 2026] [security2:error] [pid 20081:tid 20103] [client 34.106.210.224:41096] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "dcmproductionsgroup.104ventures.com"] [uri "/.env.dev"] [unique_id "apa921TFwdOKcQJZPCRVewAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 10:57:13
(21 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 06:57:07.653306 2026] [security2:error] [pid 226456:tid 226594] [client 34.106.210.224:45064] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.ramona.town"] [uri "/.env"] [unique_id "apavgyrdEraH6Tx-Bu-iJAAAARc"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ซ๐ท
masterguru
2026-09-01 09:51:01
(22 hours ago)
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.106.210.224 (US/United States/224. ...
show more
(modsec_5080) ModSec 5080: Infrastructure subdomain probe from 34.106.210.224 (US/United States/224.210.106.34.bc.googleusercontent.com): 2 in the last 3600 secs (0-196)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-09-01 09:46:43
(22 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 05:46:39.353494 2026] [security2:error] [pid 6848:tid 6848] [client 34.106.210.224:42644] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.env" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "sites.seobefoundlocal.com"] [uri "/.env.bak"] [unique_id "apae_8kTnntQqiBFi15X3wAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
MatCat
2026-09-01 09:05:09
(23 hours ago)
Banned by fail2ban: apache-webprobe
Port Scan
Bad Web Bot
Anonymous
2026-09-01 08:56:15
(23 hours ago)
Bloqueado automaticamente por CrowdSec escenario crowdsecurity/http-sensitive-files
Brute-Force
๐ซ๐ฎ
as211431.net
2026-09-01 08:20:26
(1 day ago)
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET metho ...
show more
Triggered Cloudflare WAF (firewallCustom) from US.
Action taken: BLOCK
Protocol: HTTP/1.1 (GET method)
Endpoint: /.env/
UA: crusader-worker/1.0
This report was generated by:
https://github.com/sefinek/Cloudflare-WAF-To-AbuseIPDB
show less
Bad Web Bot
๐บ๐ธ
mnsf
2026-09-01 08:05:53
(1 day ago)
Scanning/Probing (20)
Brute-Force
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-09-01 07:42:01
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 34.106.210.224 (224.210.106.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Sep 01 03:41:57.598989 2026] [security2:error] [pid 19570:tid 19570] [client 34.106.210.224:39256] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "wp-config.php" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "flashbackmusicmemories.com"] [uri "/wp-config.php~"] [unique_id "apaBxYifW4e1MDyvBJSgzwAAABo"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-09-01 07:20:30
(1 day ago)
GET /.env.dev HTTP/1.1
...
Web App Attack
๐ณ๐ฑ
e.fierstra
2026-09-01 07:09:14
(1 day ago)
ModSecurity hits exceeded
Bad Web Bot
Web App Attack